💾 Archived View for bbs.geminispace.org › s › GmCapsule-Issues › 8 captured on 2024-08-25 at 10:35:39. Gemini links have been rewritten to link to archived content

View Raw

More Information

⬅️ Previous capture (2024-08-18)

➡️ Next capture (2024-08-31)

🚧 View Differences

-=-=-=-=-=-=-

[#8] Separate certificates for virtual hosts

Each virtual host should be able to use its own certificate. Currently, only one certificate is used and it must have alternative names for each vhost.

I'm not sure if this requires more than loading multiple server certificates at launch, i.e., whether pyOpenSSL checks the SNI info automatically or does the handshake need to be handled more manually. Some research needed...

✔︎ #feature

🐞 Issue #8 in s/GmCapsule-Issues

🕹️ skyjake [mod, sysop]

2023-07-19 · 1 year ago

1 Comment

Commit 3f372e73 · Virtual host certificates; bumped version to 0.9.1

8 hours ago

🕹️ skyjake [OP/mod...] · 8 hours ago:

Implemented for v0.9.1. The way this works is that you first create separate SSL contexts for each virtual host. Then you can set up a callback to select the context for a particular incoming connection based on the SNI servername.